[SECURITY] Fedora 9 Update: amarok-1.4.10-1.fc9
updates at fedoraproject.org
updates at fedoraproject.org
Wed Sep 10 06:33:33 UTC 2008
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-7739
2008-09-05 11:04:44
--------------------------------------------------------------------------------
Name : amarok
Product : Fedora 9
Version : 1.4.10
Release : 1.fc9
URL : http://amarok.kde.org
Summary : Media player
Description :
Amarok is a multimedia player with:
- fresh playlist concept, very fast to use, with drag and drop
- plays all formats supported by the various engines
- audio effects, like reverb and compressor
- compatible with the .m3u and .pls formats for playlists
- nice GUI, integrates into the KDE look, but with a unique touch
Amarok can use various engines to decode sound : helix and xine.
To use the helix engine, you need to install either HelixPlayer
or RealPlayer
--------------------------------------------------------------------------------
Update Information:
Amarok 1.4.10 has been released to fix a security problem. For more information
please see http://amarok.kde.org/en/node/535/ Please update.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Aug 13 2008 Rex Dieter <rdieter at fedoraproject.org> - 1.4.10-1
- amarok-1.4.10
* Wed Jun 11 2008 Dennis Gilmore <dennis at ausil.us> - 1.4.9.1-4
- we are building sparc32 as sparcv9 not sparc now fix ifnarch
* Fri May 2 2008 Rex Dieter <rdieter at fedoraproject.org> - 1.4.9.1-3
- fix libnjb support (#444940)
* Thu May 1 2008 Rex Dieter <rdieter at fedoraproject.org> - 1.4.9.1-2.1
- --with-libvisual fedora-only (epel misses libvisual-plugins)
* Thu Apr 17 2008 Rex Dieter <rdieter at fedoraproject.org> - 1.4.9.1-2
- specfile typo (unclosed macro)
* Tue Apr 15 2008 Rex Dieter <rdieter at fedoraproject.org> - 1.4.9.1-1
- amarok-1.4.9.1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #459135 - CVE-2008-3699 amarok: temporary file vulnerability via symlink attacks (priv esc)
https://bugzilla.redhat.com/show_bug.cgi?id=459135
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update amarok' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
More information about the package-announce
mailing list